aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software Run date: 2012-01-21 05:39:15 ----------------------------- 05:39:15.900 OS Version: Windows x64 6.1.7601 Service Pack 1 05:39:15.900 Number of processors: 4 586 0x2502 05:39:15.910 ComputerName: DEITY-PC UserName: Deity 05:39:18.011 Initialize success 05:40:00.205 AVAST engine defs: 12012100 05:40:08.816 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 05:40:08.816 Disk 0 Vendor: WDC_WD10 01.0 Size: 953869MB BusType: 3 05:40:08.826 Disk 0 MBR read successfully 05:40:08.826 Disk 0 MBR scan 05:40:08.836 Disk 0 MBR:Pihar-C [Rtk] 05:40:08.836 Disk 0 TDL4@MBR code has been found 05:40:08.836 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 12288 MB offset 2048 05:40:08.866 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 25167872 05:40:08.876 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 941479 MB offset 25372672 05:40:08.896 Disk 0 MBR [TDL4] **ROOTKIT** 05:40:08.896 Service scanning 05:40:09.486 Service WRkrn C:\Windows\System32\drivers\WRkrn.sys **LOCKED** 32 05:40:09.996 Modules scanning 05:40:09.996 Disk 0 trace - called modules: 05:40:09.996 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll 05:40:10.006 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8006550060] 05:40:10.006 3 CLASSPNP.SYS[fffff8800181743f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa80062e1050] 05:40:11.746 AVAST engine scan C:\Windows 05:40:15.687 AVAST engine scan C:\Windows\system32 05:41:45.982 AVAST engine scan C:\Windows\system32\drivers 05:41:57.314 AVAST engine scan C:\Users\Deity 05:51:29.824 AVAST engine scan C:\ProgramData 05:53:26.055 Scan finished successfully 06:03:42.942 Disk 0 MBR has been saved successfully to "C:\Users\Deity\Desktop\MBR.dat" 06:03:42.952 The log file has been saved successfully to "C:\Users\Deity\Desktop\aswMBR.txt"